Large language model supply chain: A research agenda

S Wang, Y Zhao, X Hou, H Wang - ACM Transactions on Software …, 2024 - dl.acm.org
The rapid advancement of large language models (LLMs) has revolutionized artificial
intelligence, introducing unprecedented capabilities in natural language processing and …

Pairing Security Advisories with Vulnerable Functions Using Open-Source LLMs

T Dunlap, JS Meyers, B Reaves, W Enck - International Conference on …, 2024 - Springer
As the reliance on open-source software dependencies increases, managing the security
vulnerabilities in these dependencies becomes complex. State-of-the-art industry tools use …

Towards Effectively Detecting and Explaining Vulnerabilities Using Large Language Models

Q Mao, Z Li, X Hu, K Liu, X Xia, J Sun - arXiv preprint arXiv:2406.09701, 2024 - arxiv.org
Software vulnerabilities pose significant risks to the security and integrity of software
systems. Prior studies have proposed a series of approaches to vulnerability detection using …

STALL+: Boosting LLM-based Repository-level Code Completion with Static Analysis

J Liu, Y Chen, M Liu, X Peng, Y Lou - arXiv preprint arXiv:2406.10018, 2024 - arxiv.org
Repository-level code completion is challenging as it involves complicated contexts from
multiple files in the repository. To date, researchers have proposed two technical categories …

PairSmell: A Novel Perspective Inspecting Software Modular Structure

C Zhong, D Feitosa, P Avgeriou, H Huang, Y Li… - arXiv preprint arXiv …, 2024 - arxiv.org
Enhancing the modular structure of existing systems has attracted substantial research
interest, focusing on two main methods:(1) software modularization and (2) identifying …

RepoFixEval: A Repository-Level Program Repair Benchmark From Issue Discovering to Bug Fixing

T Sun, Y Yang, X Cheng, J Yang, Y Huo, Z Ye, R Yang… - openreview.net
Automatic Program Repair (APR) aims to automatically fix software bugs, playing an
essential role in software development. While current research demonstrates that Large …

[PDF][PDF] MGVul: a Multi-Granularity Detection Framework for Software Vulnerability

X Zhao, Y Li, Z Zha, Z Ling - apsipa2024.org
Source code vulnerability detection is a critical issue in software security. Existing detection
methods primarily focus on the function-granularity, neglecting inter-function call information …